Study of the possibility of improving the efficiency of the certification process of the information object

Автор: Vanteeva Alina E., Omelchenko Tatiana A., Nikishova Arina V.

Журнал: НБИ технологии @nbi-technologies

Рубрика: Инновации в информатике, вычислительной технике и управлении

Статья в выпуске: 1 т.16, 2022 года.

Бесплатный доступ

Attestation of information objects (IO) is an important stage in the implementation of information protection system at enterprise, organization or state body. In essence, attestation is a set of measures carried out at the IO to check the reliability of the implemented information protection system, as a result of which compliance with certain requirements of the state regulator in the field of technical information protection (FSTEC of Russia) is confirmed. The attestation process is necessary as a stage preceding the beginning of processing of the protected information, which provides for comprehensive (certification) tests of the protected IO in order to assess them. Such assessment is carried out in terms of compliance of the set of means and security measures used in IO to the put forward level of protection and should be carried out under real operating conditions of the system. The “Certificate of Conformity” obtained as a result of attestation gives the right to processes of information processing with the established level of confidentiality for the period specified in the certificate. This work examines various aspects of attestation of information object, the structure of attestation tests, legal framework, and organizational issues. The basic stages of attestation tests, and a list of necessary reporting documentation formed at various stages of tests are allocated. The concept of evaluation of attestation tests’ efficiency is considered and the question of the approach’s realization to increase the efficiency of information object’s attestation of information security requirements is raised.

Еще

Attestation, information objects, oi, automation, efficiency

Короткий адрес: https://sciup.org/149139764

IDR: 149139764

Статья научная